Tomcat9 - Ubuntu 20.04 x64

Robie Basak robie.basak at ubuntu.com
Tue Nov 15 16:00:13 UTC 2022


Hi,

On Mon, Nov 14, 2022 at 04:00:22PM +0000, Brad Turnbough wrote:
> Ran a nessus scan against the box and am being told that verion 9.0.31 is vulnerable to a DoS attack and that I need to upgrade to >=9.0.36.  Problem is, that version isn't available in the Ubuntu repos.
> 
> Can someone look into getting this package updated in order to resolve this vulnerability?

Please see: https://wiki.ubuntu.com/SecurityTeam/FAQ#Versions

If after understanding that you still think the package is vulnerable,
you need to identify a specific CVE.

Once you have that, you can search for the status of a specific CVE at
https://ubuntu.com/security/cves.

Hope that helps,

Robie
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: not available
URL: <https://lists.ubuntu.com/archives/ubuntu-devel-discuss/attachments/20221115/ee3c1ae5/attachment.sig>


More information about the Ubuntu-devel-discuss mailing list